Social EngineeringPhishingStolen CredentialsSupply Chain (3P Vendor)Customer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
RICH PRODUCTS CORPORATION
bd_9d269ac3b6f15d81 · schema v1 · pii pii-v1
Full breach record for RICH PRODUCTS CORPORATION →Rich Products Corporation notified the NH AG of a third-party data breach involving service provider First Advantage. An employee email account was compromised via phishing on Nov 13, 2025, exposing names, driver's license numbers, SSNs, and DOBs. RPC was notified on March 23, 2026. Approximately 2 NH residents were affected. First Advantage disabled the account and offered credit monitoring.
Tracked as a single-filing incident — the only disclosure on record for this event so far.Confirmed2 affectedView incident
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/rich-products-20260422.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Apr 22, 2026
- Raw hash
- 2fb498970f62cc4254edf27e840157bfe7a385cc554fc4414de40be0953407f8
Reporting entity
- Name
- RICH PRODUCTS CORPORATIONnorm: rich products
- Domain
- richs.com
Victim entity
- Name
- RICH PRODUCTS CORPORATIONnorm: rich products
- Domain
- richs.com
Incident
- Discovered
- Mar 23, 2026
- Materiality determined
- —
- Notification sent
- Apr 21, 2026
- Affected individuals
- 2
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Phishing
- MITRE ATT&CK
- T1566.002 Spearphishing LinkT1078 Valid AccountsT1114 Email Collection
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified New Hampshire Attorney General
- Initial access
- phishing_link
Compliance
- Time to disclose
- 4 weeks(30 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.